Canonical

Ubuntu Linux

4107 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 37.1%
  • Veröffentlicht 29.11.2011 00:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Integer overflow in the exif_process_IFD_TAG function in exif.c in the exif extension in PHP 5.4.0beta2 on 32-bit platforms allows remote attackers to read the contents of arbitrary memory locations or cause a denial of service via a crafted offset_v...

Warnung
  • EPSS 92.59%
  • Veröffentlicht 19.10.2011 21:55:01
  • Zuletzt bearbeitet 22.10.2025 01:15:41

Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE JDK and JRE 7 and 6 Update 27 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality, integrity, and a...

Exploit
  • EPSS 7.62%
  • Veröffentlicht 10.10.2011 10:55:05
  • Zuletzt bearbeitet 11.04.2025 00:51:21

net/core/net_namespace.c in the Linux kernel 2.6.32 and earlier does not properly handle a high rate of creation and cleanup of network namespaces, which makes it easier for remote attackers to cause a denial of service (memory consumption) via reque...

  • EPSS 3.93%
  • Veröffentlicht 06.09.2011 19:55:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The SSL protocol, as used in certain configurations in Microsoft Windows and Microsoft Internet Explorer, Mozilla Firefox, Google Chrome, Opera, and other products, encrypts data by using CBC mode with chained initialization vectors, which allows man...

Exploit
  • EPSS 90.46%
  • Veröffentlicht 29.08.2011 15:55:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The byterange filter in the Apache HTTP Server 1.3.x, 2.0.x through 2.0.64, and 2.2.x through 2.2.19 allows remote attackers to cause a denial of service (memory and CPU consumption) via a Range header that expresses multiple overlapping ranges, as e...

  • EPSS 87.79%
  • Veröffentlicht 15.08.2011 21:55:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The server in ISC DHCP 3.x and 4.x before 4.2.2, 3.1-ESV before 3.1-ESV-R3, and 4.1-ESV before 4.1-ESV-R3 allows remote attackers to cause a denial of service (daemon exit) via a crafted DHCP packet.

  • EPSS 75.34%
  • Veröffentlicht 15.08.2011 21:55:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The server in ISC DHCP 3.x and 4.x before 4.2.2, 3.1-ESV before 3.1-ESV-R3, and 4.1-ESV before 4.1-ESV-R3 allows remote attackers to cause a denial of service (daemon exit) via a crafted BOOTP packet.

Exploit
  • EPSS 19.24%
  • Veröffentlicht 29.07.2011 20:55:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple cross-site request forgery (CSRF) vulnerabilities in the Samba Web Administration Tool (SWAT) in Samba 3.x before 3.5.10 allow remote attackers to hijack the authentication of administrators for requests that (1) shut down daemons, (2) start...

  • EPSS 3.13%
  • Veröffentlicht 29.07.2011 20:55:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Cross-site scripting (XSS) vulnerability in the chg_passwd function in web/swat.c in the Samba Web Administration Tool (SWAT) in Samba 3.x before 3.5.10 allows remote authenticated administrators to inject arbitrary web script or HTML via the usernam...

  • EPSS 0.15%
  • Veröffentlicht 27.07.2011 02:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

APT before 0.8.15.2 does not properly validate inline GPG signatures, which allows man-in-the-middle attackers to install modified packages via vectors involving lack of an initial clearsigned message.